3Com WX4400 3CRWX440095A User Manual

Page 469

background image

Configuring Web Portal WebAAA

469

The rule does not by itself allow access to all usernames. The ** value
simply makes all usernames eligible for authentication, in this case by
searching the switch’s local database for the matching usernames and
passwords. If a username does not match on the access rule’s userglob,
the user is denied access without a search of the local database for the
username and password.

WX4400# set authentication web ssid mycorp ** local
success: change accepted.

6 Display the configuration:

WX1200# display config
# Configuration nvgen'd at 2006-6-13 13:27:07
# Image 5.0.0.0.62
# Model WXR100-2
# Last change occurred at 2006-6-13 13:24:46
...
set service-profile mycorp-srvcprof ssid-name mycorp
set service-profile mycorp-srvcprof auth-fallthru web-portal
set service-profile mycorp-srvcprof rsn-ie enable
set service-profile mycorp-srvcprof cipher-ccmp enable
set service-profile mycorp-srvcprof web-portal-acl portalacl
set service-profile mycorp-srvcprof attr vlan-name
mycorp-vlan
...
set authentication web ssid mycorp ** local
...
set user alice password encrypted 070e2d454d0c091218000f
set user bob password encrypted 110b16070705041e00
...
set radio-profile radprof1 service-profile mycorp-srvcprof
set ap 7 radio 2 radio-profile radprof1 mode enable
set ap 8 radio 2 radio-profile radprof1 mode enable
...
set vlan corpvlan port 2-3
set interface corpvlan ip 192.168.12.10 255.255.255.0
...
set security acl ip portalacl permit udp 0.0.0.0
255.255.255.255 eq 68 0.0.0.0 255.255.255.255 eq 67
set security acl ip portalacl deny 0.0.0.0 255.255.255.255
capture
commit security acl portalacl